Re: LDAP and/or SSH?

From: Richard E. Silverman (res_at_qoxp.net)
Date: 07/25/03


Date: 25 Jul 2003 15:32:33 -0400


> LDAP and SSH: possibly looking to implement LDAP and are wondering about the
> gaps that LDAP still leaves us with and if SSH would cover those gaps -
> example -> as passwords would be handled by LDAP,would .rhosts and .netrc on
> the UX side still be an issue? Also with LDAP would passwords be sent in the
> clear text?

LDAP is a directory access protocol. SSH is a secure remote login
protocol (etc.). This is like asking, "possibly looking to buy a Nissan
Sentra, and are wondering about gaps that still leaves us with and if
buying a new chess set would help?"

How do you view these things as related/complementary in your environment,
and how do you think a failing in LDAP will be "covered" by using SSH?

-- 
  Richard Silverman
  res@qoxp.net


Relevant Pages

  • LDAP and/or SSH?
    ... LDAP and SSH: possibly looking to implement LDAP and are wondering about the ... gaps that LDAP still leaves us with and if SSH would cover those gaps - ... Also with LDAP would passwords be sent in the ...
    (comp.security.ssh)
  • Trouble with nss|pam|openldap
    ... It appears as though the system is using ldap, but I can't seem to ssh in as an LDAP user. ... # id testuser seems to work, ... objectClass: person ...
    (freebsd-questions)
  • Re: ssh+ldap+freebsd5.2 problem
    ... I can not SSH using my LDAP account ... Have any body manage to configure ssh with openldap on ... Download Messenger Now ...
    (freebsd-questions)
  • Re: Machine not locked-up but cant log on either
    ... I'm also limiting who is allow to connect through ssh via ... I'm restricting it to the ISPs of our users. ... Probably DNS lookup is timing out and then either the LDAP bind process ... In the end, the local authentication never ...
    (RedHat)
  • Re: SSH and LDAP (how to get it to work)
    ... > Can someone please explain how to implement SSH and LDAP together. ... LDAP server: ... A useful tool to debug your server is snoop ...
    (comp.unix.solaris)